CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
24070 | CVE-2007-0713 | Candidate | Heap-based buffer overflow in Apple QuickTime before 7.1.5 allows remote user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted QuickTime movie file. | Assigned (20070205) | None (candidate not yet proposed) | View | |
89606 | CVE-2016-2787 | Candidate | The Puppet Communications Protocol in Puppet Enterprise 2015.3.x before 2015.3.3 does not properly validate certificates for the broker node, which allows remote non-whitelisted hosts to prevent runs from triggering via unspecified vectors. | Assigned (20160229) | None (candidate not yet proposed) | View | |
24326 | CVE-2007-0969 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in WebTester 5.0.20060927 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to POST parameters to multiple files. | Assigned (20070215) | None (candidate not yet proposed) | View | |
89862 | CVE-2016-3043 | Candidate | IBM Security Access Manager for Web could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. | Assigned (20160309) | None (candidate not yet proposed) | View | |
24582 | CVE-2007-1225 | Candidate | The connection log file implementation in Grok Developments NetProxy 4.03 does not record requests that omit http:// in a URL, which might allow remote attackers to conduct unauthorized activities and avoid detection. | Assigned (20070302) | None (candidate not yet proposed) | View |
Page 534 of 20943, showing 5 records out of 104715 total, starting on record 2666, ending on 2670